Plagiarist.2014, Plagiarist.2051

These are resident multi-partite encrypted COM infectors. When an infected file is executed the hard disk’s MBR is infected and the virus finishes its activity without installing itself into memory. At the next system loading installation of the virus into memory will take place. The virus infects boot sectors of diskettes which are not write-protected, and COM type files when they are executed. File ND.COM will not be infected. The activity of the virus is interesting as such – in the text being sent to the printer the virus searches for the name “Andy Warhol” and substitutes it by name “Ron English”. The name of the virus “Plagiarist” has been derived from this activity.

